Eicon Networks S92 Manual de usuario Pagina 82

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 209
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 81
YuChakTinMichael‘sGIACGCFWProjectAssignment
Page 82
Ifthelogfilegrowstoobig(thisispossibleinabusynetwork),considertostarta
newlogfile.Whenanewlogfileisstarted,thecurrentonewillbeautomatically
savedwithanamethathasthecurrentdateappendedtoit.
Apartfromthelog,wemay,throughtheSystemStatusinterface,watchinrealtime
thenumberofpacketsthatareDropped,Rejected,InspectedandLogged.
ConfiguringtheR ulebaseforFW2_B2C:
Refertot he“ProductsPreparation”section on FW1and WindowsNT hardening.
SecurityPoliciesandOrders:
FW2_B2Cisthesecondlayerof firewall protection againstoutsideintrusionalong
theB2Clink.Italsopreventstheinternalstaffsfromtamperingwiththepublic
serviceservers. Thesecuritypolicieshereinclude:
1,Ecommercewebservice:
n AnytrafficallowedfromInternal_Admin.
n HTTP/HTTPStrafficallowedfrom Internal_Dev (DevelopersuseHTTP/HTTPS
basedupdatemethodsuchasFrontpageServerextension).
n HTTP/HTTPStrafficallowedfromInternal_Clients.
n HTTP/HTTPStrafficallowedfromRAS_Net.
2,Externalemailservice:
n Anytrafficallowedfrom Internal_Admin.
n SMTPtrafficallowedfromtheinternalemailserverforretrievingandsending
emailstoandfromtheoutsideworld.
3,External DNSservice:
n Anytrafficallowedfrom Internal_Admin.
n DNSquery trafficallowedfromInternal_Dev.
n DNSquerytrafficallowedfromInternal_Clients.
n DNSquerytrafficallowedfromRAS_Net.
4,IDS:
Vista de pagina 81
1 2 ... 77 78 79 80 81 82 83 84 85 86 87 ... 208 209

Comentarios a estos manuales

Sin comentarios